Changes between Initial Version and Version 1 of IdpSkinAuth


Ignore:
Timestamp:
11/16/11 10:26:36 (13 years ago)
Author:
jpmitchell@…
Comment:

--

Legend:

Unmodified
Added
Removed
Modified
  • IdpSkinAuth

    v1 v1  
     1== [[/|Shibboleth]] / IdP Skinned Authentication == 
     2 
     3So far it appears that to get good adoption of centralized SSO via SAML/Shibboleth we will be forced to abandon the security best practice of a recognizable authoritative login window/page/process. We need to look at how to extend the existing Shibboleth IdP to support skinned login pages for different SPs. 
     4 
     5https://wiki.shibboleth.net/confluence/display/SHIB2/IdPAuthUserPassLoginPage 
     6 
     7After initial analysis this could be done is Java Server Pages, by leveraging the idpui tags, or by developing our own login handler in Java based on the provided default login handler. 
     8 
     9https://wiki.shibboleth.net/confluence/display/SHIB2/IdPDevExtLoginHandler 
     10 
     11It appears that the simplest solution may be to leverage JSPs. The most elegant solutions appears to be our on login handler.